AN INTEGRATED CIRCUIT CHIP MADE SECURE AGAINST THE ACTION 
OF ELECTROMAGNETIC RADIATION 

10 The present invention relates to integrated circuit (IC) chips for incorporating in 

portable articles, in particular of card format. 

IC Cards are generally used in applications in which it is essential for confidential 
15 information to be stored and processed securely. By way of example, such applications 
lie in the fields of health, telephony, pay TV, or banking such as electronic purse 
applications. 

Such cards comprise a plastics card body having an IC or chip device 
incorporated therein. 

20 In the chip, the integrated circuit forms a complex assembly of logic cells over 

which a central processor unit (CPU) dispenses and controls information stored in RAM, 
ROM, or EEPROM type memories by means of a data bus and an address bus. 

Conventionally, the logic cells are of the CMOS type. They are constituted by a 
P-type first MOS transistor and by an N-type second MOS transistor connected in a series 

25 and controlled by a common logic control signal resulting from the concomitant action of 
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electrical signals present at the inputs of the circuit and of electrical signals generated by 
programs contained in the ROM or EEPROM memories or by associated electronic 
circuits. As a function of the logic control signal, charge distribution between valance 
and conduction bands is altered, thereby giving rise to controlled switching of said 
5 transistors. 

Nevertheless, some energy sources can also modify this distribution. This applies 
in particular to electromagnetic radiation, in particular in ranges going from ultraviolet to 
infrared. As a result, using such radiation to illuminate a zone of the chip, e.g. a set of 
logic cells, can cause the transistors in said set of cells to switch independently of any 

10 electrical control ordered by the logic circuits. 

That is why attackers, by taking a chip connected via its Vdd, Vss, Clock, I/O, 
and Reset pads, and by illuminating an appropriate zone of its circuits with focused 
electromagnetic radiation in the ultraviolet, visible, or infrared rant at time t chosen by 
them, have been able to cause the transistors in said zone to switch, thereby altering the 

15 normal sequencing of operations programmed in the memories of the chip, and have in 
particular been able to cause the chip to perform operations that are normally not 
authorized, thus giving access to secrets without destroying the circuits. 

Known means for protecting integrated circuits against the action of 
electromagnetic radiation have nevertheless been developed. These comprise software 

20 means characterized by the fact that the programs in the ROM or EEPROM memories of 
the chip are numerous and associated with verification means. Nevertheless, those 
known means do not provide effective protection against "light" attack and they suffer 
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from the drawbacks of requiring a large amount of memory space in the chip and of 
significantly slowing down the execution of the operations it is required to perform. 
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Specifically, these physical means for providing protection against the action of 
electromagnetic radiation are dopants for silicon, or they are formed by surface 
irregularities or by at least one metal layer. 



10 The invention will be better understood on reading the following non- limiting 

description given with reference to the accompanying drawings, in which: 

• Figure 1 is a perspective view of a card having a chip of the invention; 

• Figure 2 is a perspective view of a module including a chip of the 
invention; 

15 • Figures 3 A and 3B are perspective views showing two types of chip of the 

invention; 

• Figures 5A and 5B are graphs showing the extent to which the means of 
20 the invention provide the chip with protection against the action of light; 
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Figure 3B; 



Figure "F 5- a 'Fu-J 0'\!!""Fot!, i.s r.sl on -Jens, a ^ u^^s soof^cn vv^ivj^s n^ 
i SKsno Fi 

Fi,;uro "X anoFno^ \o!'a!n oUiio ibn^i vriibo'briiosn a- n-; ri,;u!0 



5 



or r xiU'f) nv\rpn-TUs\ tiu- draw ings 

The present invention deals by way of example with smart cards, nevertheless, the 
invention naturally apphes in general to any integrated circuit device for incorporation in 
5 a portable article, such as a subscriber identity module (SIM) of mini-card format, or an 
electronic label. 

A smart card is a standard portable article operating with and/or without contact 
and it is defined in particular in ISO standards 7810 and 7816, the content of which is 
incorporated in the present description by reference. 
10 As shown in Figure 1, a smart card comprises firstly a plastics card body 2 and 

secondly an electronic module 3 having contact areas 4 lying flush with the surface of the 
card body 2. 

The card body 2 is made of plastics material which can be thermoplastic or 
thermosetting. It is in the form of a flat rectangular parallelepiped having dimensions 
15 which are about 85 millimeters (mm) long, 54 mm wide, and 0.76 mm thick. 

The electronic module 3 shown in Figure 2 comprises an integrated circuit or chip 
device 5 fixed via its rear surface 6 to a thickness 7 of epoxy that carries the contact areas 
4. Contact pads 8 on the chip 5 are electrically connected to said areas 4 by means of 
metal wires passing through holes 10 opening out through the thickness 7 of epoxy. The 
20 assembly comprising the chip 5 and the wires 9 is embedded in a protective resin 1 1 . 

Chips 5 of the invention are in the form of small rectangular parallelepipeds, in 
practice having a side of about 2 mm and a thickness of a few hundreds of microns (|xm), 
e.g. 200 |xm. There are two main types. 
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In the first type as shown in Figure 3 A, the chip 5 has a silicon substrate layer 12. 
This layer 12 has an active face 13 in which the circuits are integrated and a face opposite 
from said from said active face 13, i.e. the rear face 6. The contact pads 8 are generally 
five in number and they are integrated in the active face 13. 
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Whatever its type, the chip 3 of the invention has physical means providing 
10 physical protection against the action of light, i.e. against the action of electromagnetic 
radiation in the ultraviolet, visible, and infrared ranges, said ranges being defined as 
follows by wavelength: 

• ultraviolet: 10 nanometers (nm) < X< 400 nm; 

• visible: 400 nm < X < 700 nm; and 
15 • infrared: 0.7 |xm < X < 0.1 mm. 

In a first embodiment of the invention as shown in Figures 4A, 4B, and 4C, these 
means are silicon dopants 17. 

In an intrinsic silicon crystal, all or nearly all of the atoms are silicon atoms. As 
shown in Figure 5 A, an intrinsic silicon crystal at 300 Kelvins (K) is opaque to 
20 electromagnetic radiation in most of the visible and ultraviolet spectrum at a wavelength 
longer than 0.7 |xm, having an absorption coefficient greater than 100 cm"\ However, 
this absorption coefficient falls off very considerably at wavelengths greater than 1 [xm. 
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i.e. for the portion of the electromagnetic spectrum that corresponds substantially to the 
infrared range. Infrared radiation therefore penetrates intrinsic silicon. 

As shown in Figure 5B, in the presence of dopants 17 at a concentration of Nd = 
10^^ atoms per cm^, the light absorption coefficient remains greater than 100 cm"\ not 
5 only at wavelengths shorter than 1 [xm, but also at longer wavelengths. It can even be 
seen that the absorption coefficient increases at wavelengths rising from 1 [xm to 10 |xm. 

Thus, the dopants conventionally used for changing the semiconductive properties 
of silicon are capable of changing the absorption properties of an intrinsic crystal of 
silicon so that its absorption coefficient increases significantly at wavelengths longer than 
10 1 |xm, i.e. in particular, at wavelengths in the infrared range. 

In the invention, the dopants 17 are atoms whose chemical nature is different from 
that of silicon such that the presence thereof gives rise to defects in its crystal lattice. 
They can be atoms of phosphorus or of boron, for example. The number of dopant atoms 
present in the silicon hes in the range 10^^ to 10^" atoms per cm , and is preferably about 
15 10^^ atoms per cm^. Light absorption at given wavelength and thickness increases with 
increasing concentration of dopant. 

The dopants 17 can be incorporated in the crystal lattice while the silicon crystal 
is being grown, or else they can be the subject of high temperature diffusion under an 
inert atmosphere, or they can be the subject of ion implantation. 
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In the variant of Figure 4B which shows a chip 5 of the first type, the dopants 17 
15 are present in the substrate layer 12 of the chip 5. These dopants are concentrated in the 
rear portion of said layer 12. Thus, the effects of the dopants on electrical conduction do 
not interfere with proper operation of the integrated circuits on the active face 13 of the 
chip 5. 
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10 By way of example, these surface irregularities 20 are constituted by recesses and 

projections formed over the entire surface in question of the substrate or additional layer. 
The height of these recesses and projections is the order of a few microns. 

In practice, the irregularities 20 are formed by etching the silicon , e.g. by means 
of a dry technique such as mechanical abrasion, or a wet technique such as potassium 

15 hydroxide (KOH) machining. 

Focused incident electromagnetic radiation, and in particular such 
electromagnetic radiation having a wavelength longer than 1 [xm, in particular infrared 
radiation, is reflected in part by the irregular walls of the silicon and is subject in part to 
refraction. By being reflected, attenuated, and diffused in this way, the radiation no 

20 longer reaches the intended targets of the attacker and the attacker can no longer predict 
which targets will finally be reached. This makes the attacks impossible. 
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By way of example, this can be a layer of aluminum, or palladium, or a layer 
made up of a superposition of metal sub-layers, e.g. nickel, of chromium, and of gold. 
10 A face can be metallized by vacuum deposition. 

The layer of metal reflects or absorbs all of the incident light that is intended to 
illuminate the circuits. It is no longer possible to use an optical microscope to inspect the 
active surface of the integrated circuit nor is it possible to observe it using infrared 
techniques. 

15 In the variant of Figure 7A which shows a chip of the second type, the metal layer 

21 is placed between the additional layer 14 and the sealing layer 15. 
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Naturally, the invention is not limited to the above-described variants. In 
addition, it is possible to use different protection means in the same chip 5. 

10 It will be observed that installing an additional layer on the active face of a chip of 

the first type and/or installing the above-mentioned means for protecting the circuits 
against the action of light can take place in steps that are subsequent to the conventional 
steps for producing integrated circuits. As a result, conventional chip manufacturing 
lines can be conserved. Furthermore, a chip of the invention, whether of the first or 

15 second type, has substantially the same dimensions as conventional chips in the state of 
the art. As a result lines for manufacturing modules can be conserved to operate with 
chips of the invention. 

It will also be observed that the means providing physical protection against the 
action of light can cover all of the integrated circuits or only some of them. When only 

20 certain portions of said integrated circuits are covered, those portions are advantageously 
key portions, i.e. portions which are sensitive to attack by light and in which a 
disturbance produced by such light could be harmful to the integrity of the chip and the 
secrets it contains. In particular, such key portions can be constituted by the voltage 
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multiplier used for programming the EEPROM memory cells, the amplifiers for reading 
the content of memories, and some of the registers of the volatile memory (RAM) or of 
the central processor unit (CPU). 
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